A server system implements an encryption service, in connection with a proxy service that enables a client computer to utilize the third-party network service.
Legal claims defining the scope of protection, as filed with the USPTO.
1. A server system comprising: a memory resource to store: a set of instructions; one or more processors to access the set of instructions from the memory resource to: provide a proxy service for a client computer to utilize when accessing a third-party network service; wherein in providing the proxy service, the one or more processors: receive a content submission from the client computer intended for the third-party network service; analyze the content submission to identify one or more sensitive data elements within the content submission, wherein a remainder of the content submission is not recognized as being sensitive; perform an encryption operation on the sensitive data elements; store a decryption key associated with the sensitive data elements with the server system; transmit the content submission to the third-party network service to store the content submission with the sensitive data elements in an encrypted form; receive a request, independent of the client computer, identifying the sensitive data elements in the encrypted form; and provide a response to the request using the decryption key, the response enabling the sensitive data elements to be used in a decrypted form.
2. The server system of claim 1 , wherein the one or more processors provide the response to the request by receiving the sensitive data elements in the encrypted form from a requester independent of the client computer, decrypting the sensitive data elements from the encrypted form into the decrypted form, and then sending the sensitive data elements in the decrypted form to the requester.
3. The server system of claim 2 , wherein the requester is a workflow, program, routine, or process implemented by the third-party network service.
4. The server system of claim 2 , wherein the requester is separate from the third-party network service, and the one or more processors provide the response to the request by (i) retrieving the sensitive data elements specified by the request from the third-party network service, the sensitive data elements being in the encrypted form, (ii) decrypting the sensitive data elements from the encrypted form into the decrypted form, and (iii) sending the sensitive data elements in the decrypted form to the requester.
5. The server system of claim 1 , wherein in providing the proxy service, the one or more processors analyze content communicated from the client computer to the third-party network service to determine one or more data elements to encrypt before the one or more data elements are stored in the encrypted form with the third-party network service.
6. The server system of claim 1 , wherein the decryption key is used for decrypting the sensitive data elements in the encrypted form.
7. The server system of claim 1 , wherein the one or more processors store a set of interoperability parameters associated with the sensitive data elements with the server system.
8. The server system of claim 7 , wherein the set of interoperability parameters specify configurations, settings, and/or workflows to enable the sensitive data elements to be used between distinct systems or services.
9. The server system of claim 7 , wherein the set of interoperability parameters specify a format, configuration, or setting for use of the sensitive data elements in the decrypted form.
10. The server system of claim 7 , wherein the set of interoperability parameters enable the sensitive data elements to be used in the decrypted form for a particular purpose.
11. A method for providing a proxy service between a client computer and a third-party network service, the method being implemented by one or more processors of a network computer system and comprising: receiving a content submission from the client computer intended for the third-party network service; analyzing the content submission to identify one or more sensitive data elements within the content submission, wherein a remainder of the content submission is not recognized as being sensitive; performing an encryption operation on the sensitive data elements; storing a decryption key associated with the sensitive data elements with the network computer system; transmitting the content submission to the third-party network service to store the content submission with the sensitive data elements in an encrypted form; receiving a request, independent of the client computer, identifying the sensitive data elements in the encrypted form; and providing a response to the request using the decryption, the response enabling the sensitive data elements to be used in a decrypted form.
12. The method of claim 11 , wherein providing the response to the request includes receiving the sensitive data elements in the encrypted form from a requester independent of the client computer, decrypting the sensitive data elements from the encrypted form into the decrypted form, and then sending the sensitive data elements in the decrypted form to the requester.
13. The method of claim 12 , wherein the requester is a workflow, program, routine, or process implemented by the third-party network service.
14. The method of claim 12 , wherein the requester is separate from the third-party network service, and the one or more processors provide the response to the request by (i) retrieving sensitive data elements specified by the request from the third-party network service, the sensitive data elements being in the encrypted form, (ii) decrypting the sensitive data elements from the encrypted form into the decrypted form, and (iii) sending the sensitive data elements in the decrypted form to the requester.
15. A non-transitory computer-readable medium that stores instructions, which when executed by one or more processors of a computer system, cause the computer system to perform operations that include: receiving a content submission from a client computer intended for a third-party network service; analyzing the content submission to identify one or more sensitive data elements within the content submission, wherein a remainder of the content submission is not recognized as being sensitive; performing an encryption operation on the sensitive data elements; storing a decryption key associated with the sensitive data elements with the computer system; transmitting the content submission to the third-party network service to store the content submission with the sensitive data elements in an encrypted form; receiving a request, independent of the client computer, identifying the sensitive data elements in the encrypted form; and providing a response to the request using the decryption, the response enabling the sensitive data elements to be used in a decrypted form.
16. The non-transitory computer-readable medium of claim 15 , wherein the one or more processors provide the response to the request by receiving the sensitive data elements in the encrypted form from a requester independent of the client computer, decrypting the sensitive data elements from the encrypted form into the decrypted form, and then sending the sensitive data elements in the decrypted form to the requester.
17. The non-transitory computer-readable medium of claim 16 , wherein the requester is a workflow, program, routine, or process implemented by the third-party network service.
18. The non-transitory computer-readable medium of claim 16 , wherein the requester is separate from the third-party network service, and the one or more processors provide the response to the request by (i) retrieving the sensitive data elements specified by the request from the third-party network service, the sensitive data elements being in the encrypted form, (ii) decrypting the sensitive data elements from the encrypted form into the decrypted form, and (iii) sending the sensitive data elements in the decrypted form to the requester.
Cooperative Patent Classification codes for this invention. Click any code to explore related patents in that topic.
December 22, 2017
October 6, 2020
Browse 5M+ US patents with plain-English claim translations and AI-generated analysis.